On Tuesday 05 September 2006 17:35, Andrew D. Fant wrote:
> I know that there is an NIS emulation mode for ldap, but is there a more
> elegant way to have a local password file, where logins are checked first
> against the directory, and if there is no ldap entry for the user, falling
> back to the local files?

In /etc/nsswitch.conf, you can have an entry like this :

passwd:      ldap files
shadow:      ldap files
group:       ldap files

An for the accounts, in the configuration of PAM, you can have :

auth       sufficient   pam_ldap.so
auth       sufficient   pam_unix.so likeauth nullok use_first_pass

This should do what you want...

I hope it will help you !

-- 
Nicolas MASSÉ
Pour récupérer ma clef GPG:
gpg --keyserver wwwkeys.eu.pgp.net --recv-keys 0x2A18C433
Key fingerprint: 6621 FC23 5DC7 54BA B952 316A 50B1 BC3F 2A18 C433

Attachment: pgpfpdPJyMRA9.pgp
Description: PGP signature

Reply via email to